2004 CVE Vulnerabilities
2,707 CVEs published in 2004.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2004-2392 | — | — | 1.5% | Dec 31, 2004 | libuser 0.51.7 allows attackers to cause a denial of service (crash or disk consumption) via unknown attack vectors, rel... |
| CVE-2004-2609 | — | — | 0.4% | Dec 31, 2004 | The stuffit.com executable on Symantec PowerQuest DeployCenter 5.5 boot disks allows local users to obtain sensitive inf... |
| CVE-2004-2391 | — | — | 1.6% | Dec 31, 2004 | Jabber Gadu-Gadu Transport (a.k.a. jabber-gg-transport) 2.0.x before 2.0.8 allows remote attackers to cause a denial of ... |
| CVE-2004-1835 | — | — | 4.9% | Dec 31, 2004 | Multiple SQL injection vulnerabilities in index.php in Invision Gallery 1.0.1 allow remote attackers to execute arbitrar... |
| CVE-2004-1940 | — | — | 4.1% | Dec 31, 2004 | sipclient.cpp in KPhone 4.0.1 and earlier allows remote attackers to cause a denial of service (crash) via a STUN respon... |
| CVE-2004-2390 | — | — | 1.4% | Dec 31, 2004 | The roster import functionality in Jabber Gadu-Gadu Transport (a.k.a. jabber-gg-transport) 2.0.x before 2.0.8, when usin... |
| CVE-2004-2389 | — | — | 1.8% | Dec 31, 2004 | Unknown vulnerability in Jabber Gadu-Gadu Transport (a.k.a. jabber-gg-transport) 2.0.x before 2.0.8 allows remote attack... |
| CVE-2004-1937 | — | — | 8.1% | Dec 31, 2004 | Multiple directory traversal vulnerabilities in Nuked-KlaN 1.4b and 1.5b allow remote attackers to read or include arbit... |
| CVE-2004-2388 | — | — | 2.1% | Dec 31, 2004 | rexecd for AIX 4.3.3 does not properly use a local copy of the pwd structure when calling getpwnam, which may cause the ... |
| CVE-2004-2607 | — | — | 0.5% | Dec 31, 2004 | A numeric casting discrepancy in sdla_xfer in Linux kernel 2.6.x up to 2.6.5 and 2.4 up to 2.4.29-rc1 allows local users... |
| CVE-2004-2387 | — | — | 3.7% | Dec 31, 2004 | Buffer overflow in the HandleCPCCommand function of sercd before 2.3.1 and sredird 2.2.1 and earlier allows remote attac... |
| CVE-2004-1841 | — | — | 1.3% | Dec 31, 2004 | SQL injection vulnerability in MS Analysis module 2.0 for PHP-Nuke allows remote attackers to execute arbitrary SQL via ... |
| CVE-2004-2113 | — | — | 1.9% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in BremsServer 1.2.4 allows remote attackers to inject arbitrary web script or ... |
| CVE-2004-2386 | — | — | 3.2% | Dec 31, 2004 | Format string vulnerability in the LogMsg function in sercd before 2.3.1 and sredird 2.2.1 and earlier allows remote att... |
| CVE-2004-2385 | — | — | 6.7% | Dec 31, 2004 | EMU Webmail 5.2.7 allows remote attackers to obtain sensitive path information (home directory) via an HTTP request for ... |
| CVE-2004-2715 | — | — | 4.6% | Dec 31, 2004 | edituser.php3 in PHPMyChat 0.14.5 allow remote attackers to bypass authentication and gain administrative privileges by ... |
| CVE-2004-2384 | — | — | 2.6% | Dec 31, 2004 | NullSoft Winamp 5.02 allows remote attackers to cause a denial of service (crash) by creating a file with a long filenam... |
| CVE-2004-2605 | — | — | 0.3% | Dec 31, 2004 | aStats 1.6.5 allows local users to overwrite arbitrary files via a symlink attack on (1) the aStats-Graphic-Signature-Ge... |
| CVE-2004-2383 | — | — | 20.0% | Dec 31, 2004 | Microsoft Internet Explorer 5.0 through 6.0 allows remote attackers to bypass cross-frame scripting restrictions and cap... |
| CVE-2004-1867 | — | — | 1.7% | Dec 31, 2004 | Cross-site scripting (XSS) vulnerability in guest.cgi in Fresh Guest Book allows remote attackers to inject arbitrary we... |
| CVE-2004-2115 | — | — | 58.4% | Dec 31, 2004 | Multiple cross-site scripting (XSS) vulnerabilities in Oracle HTTP Server 1.3.22, based on Apache, allow remote attacker... |
| CVE-2004-2382 | — | — | 1.6% | Dec 31, 2004 | The PerfectNav plugin for Microsoft Internet Explorer allows remote attackers to cause a denial of service (browser cras... |
| CVE-2004-2380 | — | — | 1.8% | Dec 31, 2004 | Directory traversal vulnerability in postfile.exe for Twilight Utilities Web Server 2.0.0.0 allows remote attackers to w... |
| CVE-2004-1888 | — | — | 9.3% | Dec 31, 2004 | display.cgi in Aborior Encore WebForum allows remote to execute arbitrary commands via shell metacharacters in the file ... |
| CVE-2004-2476 | — | — | 9.1% | Dec 31, 2004 | Microsoft Internet Explorer 6.0 allows remote attackers to cause a denial of service (infinite loop and crash) via an IF... |
Check if your code is affected by 2004 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now